2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-22496MEDIUM6.5While a user account for the IBM Spectrum Protect Server 8.1.0.000 through 8.1.14 is being established, it may be config...
CVE-2022-22494MEDIUM5.3IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.14 could allow a remote attacker to gain details of the dat...
CVE-2022-22487CRITICAL9.8An IBM Spectrum Protect storage agent could allow a remote attacker to perform a brute force attack by allowing unlimite...
CVE-2022-22478MEDIUM5.5IBM Spectrum Protect Client 8.1.0.0 through 8.1.14.0 stores user credentials in plain clear text which can be read by a ...
CVE-2022-22474HIGH7.5IBM Spectrum Protect 8.1.0.0 through 8.1.14.0 dsmcad, dsmc, and dsmcsvc processes incorrectly handle certain read operat...
CVE-2022-22472HIGH8.8IBM Spectrum Protect Plus Container Backup and Restore (10.1.5 through 10.1.10.2 for Kubernetes and 10.1.7 through 10.1....
CVE-2022-2058MEDIUM6.5Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file....
CVE-2022-2057MEDIUM6.5Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file....
CVE-2022-2056MEDIUM6.5Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file....
CVE-2022-1955MEDIUM4.6Session 1.13.0 allows an attacker with physical access to the victim's device to bypass the application's password/pin l...
CVE-2022-33043MEDIUM5.4A cross-site scripting (XSS) vulnerability in the batch add function of Urtracker Premium v4.0.1.1477 allows attackers t...
CVE-2022-2078MEDIUM5.5A vulnerability was found in the Linux kernel's nft_set_desc_concat_parse() function .This flaw allows an attacker to tr...
CVE-2022-1852MEDIUM5.5A NULL pointer dereference flaw was found in the Linux kernel’s KVM module, which can lead to a denial of service in the...
CVE-2022-26135MEDIUM6.5A vulnerability in Mobile Plugin for Jira Data Center and Server allows a remote, authenticated user (including a user w...
CVE-2022-34835CRITICAL9.8In Das U-Boot through 2022.07-rc5, an integer signedness error and resultant stack-based buffer overflow in the "i2c md"...
CVE-2022-30467MEDIUM6.8Joy ebike Wolf Manufacturing year 2022 is vulnerable to Denial of service, which allows remote attackers to jam the key ...
CVE-2022-33061HIGH7.2Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-33060HIGH7.2Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-33059HIGH7.2Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-33058HIGH7.2Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-33057HIGH7.2Online Railway Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /...
CVE-2022-2073HIGH7.2Code Injection in GitHub repository getgrav/grav prior to 1.7.34.
CVE-2022-31110HIGH7.5RSSHub is an open source, extensible RSS feed generator. In commits prior to 5c4177441417 passing some special values to...
CVE-2022-31063MEDIUM5.4Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In versions prior...
CVE-2022-31058HIGH7.2Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. In versions prior...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now